This article provides an overview of SOX 404 control Ensure Continuous Service.

The typical SOX 404 IT controls for Manage Continuous Service are outlined below.

Description: A documented disaster recovery process exists and is enforced.

Control Objective: The organisation is able to restore its systems in the event of a disaster.

Typical Evidence:

  1. There is a documented disaster recovery process in place.
  2. The process defines who is mandated to invoke the plan.
  3. The process defines the actors involved in disaster recovery process.
  4. The document includes a list of contact numbers and details for the relevant actors, including substitutes.
  5. The disaster recovery plan for each application is tested each year.

For more information please contact Morland-Austin at info@morland-austin.com.